cleantalk
Vulnerabilities and Security Researches

Vulnerabilities and security researches forimport-from-yml import-from-yml

Direction: ascending
Nov 11, 2025

Import from YML # CVE-2025-64232

CVE, Research URL

CVE-2025-64232

Application

Import from YML

Date
Nov 06, 2025
Research Description
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in icopydoc Import from YML import-from-yml allows Reflected XSS.This issue affects Import from YML: from n/a through <= 3.1.17.
Affected versions
max 4.0.0.
Status
vulnerable